Hyran Data

Microsoft 365 Copilot

Hyran Data

Administrator guide

Install for a controlled enterprise pilot.

The customer administrator owns Microsoft tenant policy, upload, assignment, licensing, and removal. Hyran supplies the signed release packet, service configuration, support, and rollback.

Prerequisites

Do not upload the package until these are settled.

An approved Microsoft 365 administrator and security reviewer
A named pilot group with eligible Microsoft 365 Copilot access
Custom agent upload permitted by the customer's tenant policy
A configured Microsoft Entra connection through WorkOS
An active Hyran Data organization entitlement
The exact package checksum and rollback instructions from Hyran

Installation

A six-step admin path.

  1. 01

    Confirm the pilot boundary

    Name the Microsoft administrator, security reviewer, pilot group, support owner, approved data, and installation window. Confirm that every pilot user has the Microsoft license required by the customer's tenant.

  2. 02

    Review the release packet

    Match the package version and SHA-256 checksum to Hyran's release manifest. Review the approved tool profile, data flow, legal links, support route, and rollback target before upload.

  3. 03

    Allow custom agent upload

    Use Microsoft 365 tenant policy to permit custom app upload only for the approved administrator and pilot scope. Keep the customer's Conditional Access, consent, and app-governance rules in force.

  4. 04

    Upload and assign the package

    In the Microsoft 365 admin center, open Agents, add the Hyran package ZIP, review its details, and assign it to the approved pilot group. Do not unpack or edit the ZIP.

  5. 05

    Complete per-user sign-in

    Open the agent in Microsoft 365 Copilot. Hyran redirects the user to WorkOS, which uses the customer's configured Microsoft Entra connection. Hyran then verifies the current organization membership and entitlement.

  6. 06

    Run acceptance and record the result

    Ask the agreed questions across planning data, inspect one supporting source, and check freshness. Confirm that numerical answers keep their units, source, and timestamp. Record installation separately from user acceptance.

Acceptance

Verify behavior before widening access.

Expected

  • Only approved Hyran Data tools appear.
  • Every user completes their own WorkOS sign-in.
  • Answers identify their source and freshness.
  • Unapproved data, exports, writes, and SQL are unavailable.

If access must stop

  1. 1. Disable or unassign the agent in Microsoft 365.
  2. 2. Ask Hyran to disable the client or organization entitlement.
  3. 3. Remove the package when permanent removal is approved.
  4. 4. Ask Hyran to revoke the WorkOS client registration.

Microsoft changes admin interfaces over time. Use the current Microsoft guidance alongside this product-specific sequence. See Microsoft's custom-agent upload guide.

Get installation support